cve/2021/CVE-2021-25992.md
2025-09-29 21:09:30 +02:00

889 B
Raw Blame History

CVE-2021-25992

Description

In Ifme, versions 1.0.0 to v.7.33.2 dont properly invalidate a users session even after the user initiated logout. It makes it possible for an attacker to reuse the admin cookies either via local/network access or by other hypothetical attacks.

POC

Reference

Github

No PoCs found on GitHub currently.